# The first AI-run ransomware attack still needed a human

> Security firm Sysdig has documented what it calls the first agentic ransomware campaign, dubbed JadePuffer, in which an AI agent handled the technical labor of an attack: exploiting known flaws in Langflow and MySQL, encrypting more than 1,300 configuration records, and at one point fixing a broken login in 31 seconds while narrating its own reasoning. It is a vivid look at what autonomous offensive tooling actually does when turned loose. The reassuring caveat is in the headline. A human still set up the infrastructure and, crucially, chose the victims. The AI was a very fast technician, not a strategist. For now the hardest, most consequential decisions in an attack remain human ones. The unsettling part is what the researchers infer from the economics. If an agent can carry out the grunt work of an intrusion, the main limit on how many campaigns a crew can run becomes budget rather than skilled labor. That points toward a future where thousands of attacks run in parallel, which is exactly the scaling problem defenders least want to face.

_Section: [Daily AI Updates](https://www.wortins.com/daily-ai) · Source: TechCrunch · Published Sunday, July 19, 2026_

## Wortins' read

Security firm Sysdig has documented what it calls the first agentic ransomware campaign, dubbed JadePuffer, in which an AI agent handled the technical labor of an attack: exploiting known flaws in Langflow and MySQL, encrypting more than 1,300 configuration records, and at one point fixing a broken login in 31 seconds while narrating its own reasoning. It is a vivid look at what autonomous offensive tooling actually does when turned loose. The reassuring caveat is in the headline. A human still set up the infrastructure and, crucially, chose the victims. The AI was a very fast technician, not a strategist. For now the hardest, most consequential decisions in an attack remain human ones. The unsettling part is what the researchers infer from the economics. If an agent can carry out the grunt work of an intrusion, the main limit on how many campaigns a crew can run becomes budget rather than skilled labor. That points toward a future where thousands of attacks run in parallel, which is exactly the scaling problem defenders least want to face.

## Source

[Read the full story at TechCrunch](https://techcrunch.com/2026/07/06/the-first-ai-run-ransomware-attack-still-needed-a-human/)

## Related coverage

- [IBM and NASA release an open-source lunar foundation model](https://www.wortins.com/story/ibm-and-nasa-release-an-open-source-lunar-foundation-model-0522b9e8) — [The Next Web](https://thenextweb.com/news/nasa-ibm-lunar-foundation-model-open-source)
- [A look at why the oft-discussed predictions that AI will deliver double-digit GDP growth in advanced economies are extremely unlikely over the next 10-15 years (Ghosts of Electricity)](https://www.wortins.com/story/a-look-at-why-the-oft-discussed-predictions-that-ai-will-del-6241fa38) — [Techmeme](https://www.techmeme.com/260910/p10#a260910p10)
- [Sequoia doubles down on Cymphony as AI agents create new enterprise security risks](https://www.wortins.com/story/sequoia-doubles-down-on-cymphony-as-ai-agents-create-new-ent-e2ff7229) — [TechCrunch](https://techcrunch.com/2026/09/09/sequoia-doubles-down-on-cymphony-as-ai-agents-create-new-enterprise-security-risks/)
- [Inception launches Mercury 2.5 at 1,107 tokens per second](https://www.wortins.com/story/inception-launches-mercury-2-5-at-1-107-tokens-per-second-7999ed1b) — [TestingCatalog](https://www.testingcatalog.com/inception-launches-mercury-2-5-at-1-107-tokens-per-second/)
- [Top AI spenders cut per-employee costs by nearly 10 percent in August](https://www.wortins.com/story/top-ai-spenders-cut-per-employee-costs-by-nearly-10-percent--b31ffb0b) — [The Decoder](https://the-decoder.com/top-ai-spenders-cut-per-employee-costs-by-nearly-10-percent-in-august/)
- [Researchers used AI to build a WeChat worm that spreads through phone calls](https://www.wortins.com/story/researchers-used-ai-to-build-a-wechat-worm-that-spreads-thro-8bf3f469) — [The Next Web](https://thenextweb.com/news/wechat-worm-ai-calif-tencent-zero-click)

---

_Curated and written by [Wortins](https://www.wortins.com) — The daily AI briefing. Every story links to its original source; the "Wortins read" on each is our own original analysis. [About Wortins & our editorial approach](https://www.wortins.com/about)._
